cve/2022/CVE-2022-1256.md
2024-06-18 02:51:15 +02:00

18 lines
879 B
Markdown

### [CVE-2022-1256](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1256)
![](https://img.shields.io/static/v1?label=Product&message=McAfee%20Agent%20for%20Windows&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3C%205.7.6%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-269%3A%20Improper%20Privilege%20Management&color=brighgreen)
### Description
A local privilege escalation vulnerability in MA for Windows prior to 5.7.6 allows a local low privileged user to gain system privileges through running the repair functionality. Temporary file actions were performed on the local user's %TEMP% directory with System privileges through manipulation of symbolic links.
### POC
#### Reference
- https://kc.mcafee.com/corporate/index?page=content&id=SB10382
#### Github
No PoCs found on GitHub currently.